1 min read
Phishers Spoof 2FA in Coinbase Accounts Stealing
Originally published 8/16/2022 I. Targeted Entities Coinbase accounts II. Introduction Attackers are bypassing two-factor authentication (2FA) and...
2 min read
Cyber Florida SOCAP Team
:
Updated on August 14, 2026
Published 8/1/2022
Phishing attacks exploiting the Microsoft and Facebook brands, among others, have increased between 2021 and 2022.
According to researchers at Vade, Microsoft, Facebook, and the French bank Crédit Agricole are the top abused brands.[1] The report also says that phishing attacks exploiting the Microsoft brand increased 266% in the first quarter of 2022 compared to 2021. Phony Facebook messages are up 177% in the second quarter of 2022, compared to 2021.[1]
The research by Vade analyzed unique phishing URLs used by threat actors, not the number of phishing emails associated with those URLs. Their report listed the 25 most commonly phished companies, the most targeted industries, and the days of the week for phishing emails.[1] Other brands at the top of the list include Crédit Agricole, WhatsApp, and French telecommunications company Orange. PayPal, Google, and Apple also made the list.[1]
The report by Vade found that during the first half of 2022, 34% of all unique phishing attacks tracked by the researchers at Vade impersonated financial services brands. The next most popular sector was cloud service providers, with Microsoft, Google, and Adobe being prime targets. The social media sector was also popular, with Facebook, WhatsApp, and Instagram among the brands exploited in the attacks.[1] The researchers also found that the most popular days for sending phishing emails were Monday through Wednesday. The weekend saw few phishing emails, with only 20% sent.[1]
This threat advisory contains no indicators of compromise, but readers are advised to be aware of the links and attachments they receive to ensure their safety.
(1) Nelson, Nate. “Phishing Attacks Skyrocket with Microsoft and Facebook as Most Abused Brands.” Threatpost English Global, July 26, 2022. https://threatpost.com/popular-bait-in-phishing-attacks/180281/.
(2) Petitto, Natalie. “Phishers’ Favorites Top 25, H1 2022: Microsoft Is the Most Impersonated Brand in Phishing Attacks.” Vade, July 26, 2022. https://www.vadesecure.com/en/blog/phishers-favorites-top-25-h1-2022.
Contributing Security Analysts: Dorian Pope, Sreten Dedic, EJ Bulut, and Tural Hagverdiyev
1 min read
Originally published 8/16/2022 I. Targeted Entities Coinbase accounts II. Introduction Attackers are bypassing two-factor authentication (2FA) and...
1 min read
Originally published: 06/16/2022 I. Targeted Entities Microsoft Office users II. Introduction Microsoft has recently established a workaround for a...
1 min read
Originally published 06/06/2022 I. Targeted Entities Akami Technologies Incorporated and customers II. Introduction A recent denial-of-service...